<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Netflow in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Netflow/m-p/184989#M30821</link>
    <description>&lt;P&gt;The IP addresses and TCP/UDP ports reported by NetFlow are the ones on which it expects to receive traffic.&lt;BR /&gt;Therefore, for NATed connections, one of the two directions of flow is reported with the NATed address.&lt;BR /&gt;This is, therefore, expected behavior.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk102041" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk102041&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 27 Jun 2023 20:04:33 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-06-27T20:04:33Z</dc:date>
    <item>
      <title>Netflow</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Netflow/m-p/184867#M30800</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We using solarwinds NTA to capture traffic conversation, but i can see the conversation for my checkpoint is from public ip to public ip. What can we do on checkpoint side so netflow only send conversation from client ip address (not natted ip address) to the internet?&lt;/P&gt;</description>
      <pubDate>Tue, 27 Jun 2023 03:43:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Netflow/m-p/184867#M30800</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2023-06-27T03:43:01Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Netflow/m-p/184989#M30821</link>
      <description>&lt;P&gt;The IP addresses and TCP/UDP ports reported by NetFlow are the ones on which it expects to receive traffic.&lt;BR /&gt;Therefore, for NATed connections, one of the two directions of flow is reported with the NATed address.&lt;BR /&gt;This is, therefore, expected behavior.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk102041" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk102041&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Jun 2023 20:04:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Netflow/m-p/184989#M30821</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-06-27T20:04:33Z</dc:date>
    </item>
  </channel>
</rss>

